Tel Aviv Stock Exchange deploys CardinalOps platform for cybersecurity
CardinalOps, a detection posture management company, announced that the Tel Aviv Stock Exchange (TASE) has adopted its platform to audit and fix coverage gaps in its Splunk Enterprise Security (ES) platform, reducing the risk of undetected attacks in the Security Operations Center (SOC). TASE is a publicly traded exchange in Israel that plays a significant role in the country’s economy, and the firm provides infrastructure to the economy’s growth. The company includes various members such as international banks like Barclays Bank, Citibank, HSBC Bank, and Israeli and foreign investment firms like Jefferies, Merrill Lynch International, and UBS Securities Israel Ltd, and many others.
Addressing Complexity and Constant Changes
The SOC team of the company manages multiple challenges in maintaining and managing the various security tools that monitor telemetry to Splunk. Moreover, the team faces cases of global threat landscape and constant changes in the industry-standard framework for tracking adversary playbooks and behaviors for cyberattacks. The SOC team is responsible for developing and maintaining the custom detection rules for the adversary techniques that pose the highest risk to the companies based on MITRE ATT&CK. The CardinalOps SaaS platform helps in addressing these challenges by continually analyzing the company’s Splunk-ES instance and delivering high-fidelity detections for maximizing effectiveness.
Benefits to TASE
Gil Shua, TASE’s CISO, said that CardinalOps delivers a strategic plan and automation for effective and efficient operation of the SOC. The platform ensures they have accurate detections for the MITRE ATT&CK techniques that are most relevant to them, and most importantly, ensures that the detections function correctly with minimal false positives and negatives. Shua said that the company’s ATT&CK detection coverage has doubled in three months since using CardinalOps and is expecting to increase up to 10x by the end of this year.
Importance of Cybersecurity
The need for optimal cybersecurity is crucial in the current digital age, where most organizations rely on digital technology to carry out various operations. However, cybersecurity remains a significant challenge, as most companies still use manual and ad-hoc processes that lead to increased risks of breaches from the gaps that the attackers leverage to initiate an attack. CardinalOps ensures optimal cybersecurity levels by employing Automation and MITRE ATT&CK techniques to identify missing, noisy, and broken detections that lead to coverage gaps and enable a proactive, threat-informed defense that ties risks most relevant to a particular organization.
Conclusion
As cyber threats continue to rise globally, cybersecurity remains a significant issue that requires proper attention. CardinalOps‘ platform remains an essential tool that organizations should embrace in ensuring their cybersecurity levels are optimal. The platform provides accurate detections, ensures reliable coverage, improves productivity, and drives cost savings, and therefore is an essential tool for organizations.
<< photo by Sigmund >>
You might want to read !
- “Cyversity and United Airlines partner to boost cybersecurity education with scholarship program”
- “Exploring the Risks of PyPI Malware and its Evasion Techniques”
- The Roots of Modern Cryptography: Uncovering 16th Century Crypto Skullduggery.
- Why are bug bounties becoming more popular in the tech industry?
- Exploring the Implications of Amazon’s $30.8M Settlement for Ring Spying and Alexa Privacy Lawsuits.
- The Vulnerability of Jetpack WordPress Plug-in API Causes Widespread Website Updates